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Application No. 09/652360 

Amendment "A" dnicd April 29. 20O4 

Reply to Onice Action mailed Dcctmtocr 2, 2003 




AMENDMENTS TO THE SPECIFICATION 

In page 21, line SCptease amend the specification as reflected in the following marked-up 
version o f the paragraph: 

The data structure 500 of the request may include an extensible Markup Language 
(XML) element or any other data structure that identifies the authentication methods and the 
computer systems and/or users to which those authentication methods wilt be applied. Take the 
following XML element as an example, 

<?xml version-" 1.0"?> 
<a:rvpacl xmlns:a= u h ttpi//rehei^s.n^ 
<a:acl> 

<a:inheritance>none</a:inlieritance> 
<a:ace> 

<a:principal> 

<a:rvp-principal> 

htt p:// im s crimp 1 " rnTY > A'nQtmng/nliar.oc/220b / u Aliases URL" 

</a:rvp-principal> 

<a:credentials> 

<a:digcst/> 
<a:ntlm> 
</a:credcntials> 
<7a;principal> 
<ya:ace> 
<7a;acl> 
</a:rvpacl> 
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In page 22, line 8, please amend the specification as reflected in the following marked-up 
version of the paragraph: 



In this XML clement, the portion between <a:acO and </a:ace> defines an Access 
Control Element (ACE) thai defines access permissions. This portion would correspond to the 
access control element field 510a shown in Figure 5. The portion of the access control element 
that occurs between <a:rvp-principal> and </a:rvp-principal> defines the entity to whom the 
access permission is to apply (corresponds to the client identifier field 512 of Figure 5). In the 
above example request, the Aliases Uniform Resource Locator (URL) corresponding to the 
entity is >< http://im,cxamplo.com/inptmDg/aliascs/220b/' , which represents client computer system 
220b. The portion of the access control element that occurs between <axrcdentials> and 
</a:credentials> describes authentication mechanisms that may be used to authenticate the client 
computer system 220b when requesting access to services (corresponds to the authentication 
field 514 of Figure 5). This portion describes the two authenti cation methods that may be used 
when authenticating the client computer system 220b. Specifically, "<a:digest/>" means that the 
"digest" authentication method is acceptable while "<a:ntlm/>" means that the "ntlm" method is 
also acceptable. 
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